The DPO must at least inform and advise the controller or processor and its staff of their obligations, monitor compliance with the Law, other data protection rules and internal policies (including assignment of responsibilities, awareness-raising, training and audits), advise on DPIAs and monitor their performance, cooperate with the Agency and act as its contact point including on prior consultation, having due regard to the risk of processing.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.